CVE-2021-28449: Microsoft Office Remote Code Execution Vulnerability
Published Apr 13, 2021
·Updated
Microsoft Office Remote Code Execution Vulnerability
Affected Software
10 affected components
Microsoft 365 Apps
Microsoft Excel=2010-sp2
Microsoft Excel=2013-sp1
Microsoft Excel=2013-sp1
Microsoft Excel=2016
Microsoft Office=2010-sp2
Microsoft Office=2013-sp1
Microsoft Office=2013-sp1
Microsoft Office=2016
Microsoft Office=2019
Remediation
Event History
Apr 13, 2021
CVE Published
07:33 PM
Data Sourced
07:33 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2021-28449?
CVE-2021-28449 is rated as critical due to its potential for remote code execution.
2
How do I fix CVE-2021-28449?
To fix CVE-2021-28449, apply the latest security updates provided by Microsoft for the affected software versions.
3
Which software is affected by CVE-2021-28449?
CVE-2021-28449 affects multiple versions of Microsoft Office, including Office 2010, 2013, 2016, 2019, and Microsoft 365 apps.
4
Can CVE-2021-28449 allow an attacker to gain control of my system?
Yes, CVE-2021-28449 could allow an attacker to execute arbitrary code on the affected system, potentially taking full control.
5
What should I do if I cannot update my affected software for CVE-2021-28449?
If you cannot update your software for CVE-2021-28449, consider using workarounds to mitigate the risk until you can apply the update.